CVE-2014-2369: Omron NS Series HMI Cross-Site Request Forgery
Cross-site request forgery (CSRF) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2369?
CVE-2014-2369 is classified as a critical vulnerability due to the potential for unauthorized access and control.
How do I fix CVE-2014-2369?
To mitigate CVE-2014-2369, update the firmware of affected Omron NS series HMI terminals to a version that addresses this vulnerability.
What types of devices are affected by CVE-2014-2369?
CVE-2014-2369 affects Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals running firmware versions 8.1 to 8.68.
What is the nature of the vulnerability described in CVE-2014-2369?
CVE-2014-2369 is a cross-site request forgery (CSRF) vulnerability that allows attackers to hijack user authentication.
Who is at risk from CVE-2014-2369?
Users of the affected Omron NS series terminals, particularly those with remote authenticated access, are at risk from CVE-2014-2369.